NETEAGLE

MITRE
Malware Type:
Other
First seen:
Unknown
Last seen:
Unknown
Details:

[NETEAGLE](https://attack.mitre.org/software/S0034) is a backdoor developed by [APT30](https://attack.mitre.org/groups/G0013) with compile dates as early as 2008. It has two main variants known as “Scout” and “Norton.” (Citation: FireEye APT30)

Associated Techniques (11)
ID ATT&CK Tactics
T1008 Fallback Channels -
T1041 Exfiltration Over C2 Channel -
T1057 Process Discovery -
T1059.003 Windows Command Shell -
T1071 Application Layer Protocol -
T1071.001 Web Protocols -
T1083 File and Directory Discovery -
T1095 Non-Application Layer Protocol -
T1547.001 Registry Run Keys / Startup Folder -
T1568 Dynamic Resolution -
T1573.001 Symmetric Cryptography -
Used by Actors (1)
Metadata
ID: 231
Created: 13/01/2026 17:48
Updated: 06/03/2026 16:00